Managed XDR

vtdl_33rhz1y6 — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
vtdl_33rhz1y6
Тип файла
MS Windows shortcut, Item id list present, Points to a file or directory, Has command line arguments, Icon number=7, Archive, ctime=Thu Aug 22 10:03:32 2013, mtime=Thu Aug 22 10:03:32 2013, atime=Thu Aug 22 10:03:31 2013, length=355840, window=hidenormalshowminimized
Размер файла
1.6 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
206a5e6127f13e1dd69e61a086048cad8796297a
SHA256
270437e47cf176265a7aae80d578db9a4bb37cebc45a002756a6607307875161
MD5
4c74a4e82d2122eda302476eaea1fe13

Сигнатуры

Execution

T1204 suspicious_lnk: LNK file with suspicious content

Defense Evasion

T1070.004 self_removal_command: Executes command to delete itself

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process